← العودة للجدول
CVE-2026-39861
CVE-2026-39861 — Claude Code is an agentic coding tool. Prior to version 2.1.64, Claude Code&#039
📅 2026-04-21
🔴 Critical 🔥 No NVD Exploit Network CVSS 10 🎯 EPSS 0.17%

📋 الوصف الكامل

Claude Code is an agentic coding tool. Prior to version 2.1.64, Claude Code's sandbox did not prevent sandboxed processes from creating symlinks pointing to locations outside the workspace. When Claude Code subsequently wrote to a path within such a symlink, its unsandboxed process followed the symlink and wrote to the target location outside the workspace without prompting the user for confi

💻 الأنظمة المتأثرة

Claude Code is

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2026-39861

📡 المصدر

NVD

✅ الحلول والتخفيف

Update to v2.1.64

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←